Lucene search

K
cve[email protected]CVE-2016-4810
HistoryJun 01, 2016 - 10:59 p.m.

CVE-2016-4810

2016-06-0122:59:05
CWE-284
web.nvd.nist.gov
21
citrix
studio
xendesktop
xenapp
access policy
cve-2016-4810
security vulnerability

5 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:L/Au:N/C:N/I:P/A:N

7.5 High

CVSS3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

HIGH

Availability Impact

NONE

CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N

7.4 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

41.7%

Citrix Studio before 7.6.1000, Citrix XenDesktop 7.x before 7.6 LTSR Cumulative Update 1 (CU1), and Citrix XenApp 7.5 and 7.6 allow attackers to set Access Policy rules on the XenDesktop Delivery Controller via unspecified vectors.

Affected configurations

NVD
Node
citrixxenappMatch7.5
OR
citrixxenappMatch7.6
OR
citrixxendesktopMatch7.0
OR
citrixxendesktopMatch7.1
OR
citrixxendesktopMatch7.5
OR
citrixxendesktopMatch7.6
OR
citrixxendesktopMatch7.6fp1
OR
citrixxendesktopMatch7.6fp2
OR
citrixxendesktopMatch7.6fp3
OR
citrixxendesktopMatch7.6ltsr

5 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:L/Au:N/C:N/I:P/A:N

7.5 High

CVSS3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

HIGH

Availability Impact

NONE

CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N

7.4 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

41.7%

Related for CVE-2016-4810